VulnSea

Tagged “exploit-available”

CVEs tagged exploit-available, newest first.

3860 CVEsRSS

CVE-2011-4043Critical· 9.3PoC
14y ago

Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to…

Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to…

▾ Abyssalarcinformatique · frontvueEPSS 7.4%via NVD
CVE-2011-4042Critical· 9.3PoC
14y ago

An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafted HTML document to obtain control of a function pointer.

An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafted HTML document to obtain control of a function pointer.

▾ Abyssalarcinformatique · frontvueEPSS 6.4%via NVD
CVE-2010-2861Critical· 9.8CISA KEVPoC
16y ago

Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2)…

Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2)…

▾ Hadaladobe · coldfusionEPSS 100%via NVD
CVE-2010-1428High· 7.5CISA KEVPoC
16y ago

The Web Console (aka web-console) in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allow…

The Web Console (aka web-console) in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allow…

▾ Abyssalredhat · jboss_enterprise_application_platformEPSS 62%via NVD
CVE-2010-0738Medium· 5.3CISA KEVPoC
16y ago

The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allows …

The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allows …

▾ Midnightredhat · jboss_enterprise_application_platformEPSS 79%via NVD
CVE-2010-0188High· 7.8CISA KEVPoC
16y ago

Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.

Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.

▾ Abyssaladobe · acrobatEPSS 88%via NVD
CVE-2009-3960Medium· 6.5CISA KEVPoC
16y ago

Unspecified vulnerability in BlazeDS 3.2 and earlier, as used in LiveCycle 8.0.1, 8.2.1, and 9.0, LiveCycle Data Services 2.5.1, 2.6.1, and 3.0, Flex Data Services 2.0.1, and ColdFusion 7.0.2, 8.0, 8.0.1, and 9.0, allows remote attackers…

Unspecified vulnerability in BlazeDS 3.2 and earlier, as used in LiveCycle 8.0.1, 8.2.1, and 9.0, LiveCycle Data Services 2.5.1, 2.6.1, and 3.0, Flex Data Services 2.0.1, and ColdFusion 7.0.2, 8.0, 8.0.1, and 9.0, allows remote attackers…

▾ Midnightadobe · blazedsEPSS 90%via NVD
CVE-2010-0605High· 7.5PoC
16y ago

SQL injection vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users, with "Staff" permissions, to execute arbitrary SQL commands via the input parameter.

SQL injection vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users, with "Staff" permissions, to execute arbitrary SQL commands via the input parameter.

▾ Midnightenhancesoft · osticketEPSS 3.0%via NVD
CVE-1999-0236High· 7.5PoC
29y ago

ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.

ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.

▾ MidnightEPSS 26%via NVD
CVE-1999-0204Critical· 10.0PoC
29y ago

Sendmail 8.6.9 allows remote attackers to execute root commands, using ident.

Sendmail 8.6.9 allows remote attackers to execute root commands, using ident.

▾ AbyssalEPSS 8.8%via NVD
CVE-1999-0178High· 7.5PoC
29y ago

Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.

Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.

▾ MidnightEPSS 12%via NVD
CVE-1999-0173Medium· 5.0PoC
29y ago

FormMail CGI program can be used by web servers other than the host server that the program resides on.

FormMail CGI program can be used by web servers other than the host server that the program resides on.

▾ TwilightEPSS 4.9%via NVD
CVE-1999-0170High· 7.5PoC
29y ago

Remote attackers can mount an NFS file system in Ultrix or OSF, even if it is denied on the access list.

Remote attackers can mount an NFS file system in Ultrix or OSF, even if it is denied on the access list.

▾ MidnightEPSS 19%via NVD
CVE-1999-1026High· 7.2PoC
29y ago

aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file.

aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file.

▾ MidnightEPSS 0.86%via NVD
CVE-1999-0128Medium· 5.0PoC
29y ago

Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.

Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.

▾ TwilightEPSS 75%via NVD
CVE-1999-0101Critical· 10.0PoC
29y ago

Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.

Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.

▾ AbyssalEPSS 7.8%via NVD
CVE-1999-0045High· 7.5PoC
29y ago

List of arbitrary files on Web host via nph-test-cgi script.

List of arbitrary files on Web host via nph-test-cgi script.

▾ MidnightEPSS 26%via NVD
CVE-1999-0044High· 7.2PoC
29y ago

fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.

fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.

▾ MidnightEPSS 0.78%via NVD
CVE-1999-0050High· 7.2PoC
29y ago

Buffer overflow in HP-UX newgrp program.

Buffer overflow in HP-UX newgrp program.

▾ MidnightEPSS 1.2%via NVD
CVE-1999-0130High· 7.2PoC
29y ago

Local users can start Sendmail in daemon mode and gain root privileges.

Local users can start Sendmail in daemon mode and gain root privileges.

▾ MidnightEPSS 1.1%via NVD
CVE-1999-1384High· 7.2PoC
29y ago

Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the Remove…

Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the Remove…

▾ MidnightEPSS 1.6%via NVD
CVE-1999-0032High· 7.2PoC
29y ago

Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option.

Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option.

▾ MidnightEPSS 0.99%via NVD
CVE-1999-0116Medium· 5.0PoC
30y ago

Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.

Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.

▾ TwilightEPSS 5.6%via NVD
CVE-1999-1413Medium· 4.6PoC
30y ago

Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g

Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g. …

▾ TwilightEPSS 0.72%via NVD
CVE-1999-0023High· 7.2PoC
30y ago

Local user gains root privileges via buffer overflow in rdist, via lookup() function.

Local user gains root privileges via buffer overflow in rdist, via lookup() function.

▾ MidnightEPSS 0.78%via NVD
CVE-1999-0137High· 7.2PoC
30y ago

The dip program on many Linux systems allows local users to gain root access via a buffer overflow.

The dip program on many Linux systems allows local users to gain root access via a buffer overflow.

▾ MidnightEPSS 0.85%via NVD
CVE-1999-0175Medium· 5.0PoC
30y ago

The convert.bas program in the Novell web server allows a remote attackers to read any file on the system that is internally accessible by the web server.

The convert.bas program in the Novell web server allows a remote attackers to read any file on the system that is internally accessible by the web server.

▾ TwilightEPSS 6.2%via NVD
CVE-1999-0070Medium· 5.0PoC
30y ago

test-cgi program allows an attacker to list files on the server.

test-cgi program allows an attacker to list files on the server.

▾ TwilightEPSS 30%via NVD
CVE-1999-0233Critical· 10.0PoC
30y ago

IIS 1.0 allows users to execute arbitrary commands using .bat or .cmd files.

IIS 1.0 allows users to execute arbitrary commands using .bat or .cmd files.

▾ AbyssalEPSS 16%via NVD
CVE-1999-0103Medium· 5.0PoC
30y ago

Echo and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a

Echo and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a. UDP bomb or UDP packet storm.

▾ TwilightEPSS 15%via NVD
CVEs tagged “exploit-available” — page 128 · VulnSea